Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-07-2014 01
Ran by jmgrogan (administrator) on NOODLES-HTPC on 06-07-2014 13:57:26
Running from C:\Users\jmgrogan\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 10
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:
http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Coupons.com Inc.) C:\Program Files (x86)\Coupons\CouponPrinterService.exe
() C:\Program Files (x86)\Flip Video\FlipShare\FlipShareService.exe
() C:\Program Files (x86)\Flip Video\FlipShareServer\FlipShareServer.exe
(LeapFrog Enterprises, Inc.) C:\Program Files (x86)\LeapFrog\LeapFrog Connect\CommandService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\Locator.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Safer Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\RtkDashClientInstaller\RtkDashClient.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Dropbox, Inc.) C:\Users\jmgrogan\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(LeapFrog Enterprises, Inc.) C:\Program Files (x86)\LeapFrog\LeapFrog Connect\Monitor.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intuit Inc.) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_125.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_125.exe
(Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\ielowutil.exe
(Microsoft Corporation) C:\Windows\ehome\ehsched.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Windows\ehome\ehrec.exe
(Microsoft Corporation) C:\Windows\ehome\ehrecvr.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Nvtmru] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-14] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1100248 2013-12-09] (NVIDIA Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-09] (NVIDIA Corporation)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [89456 2011-03-07] (Elaborate Bytes AG)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-04-23] (Apple Inc.)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3084288 2012-07-31] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [Monitor] => C:\Program Files (x86)\LeapFrog\LeapFrog Connect\Monitor.exe [106496 2014-01-22] (LeapFrog Enterprises, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3890208 2014-07-04] (AVAST Software)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] ()
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation)
HKU\S-1-5-21-1200520878-3419369555-4043073295-1000\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [24474752 2014-06-05] (Google)
HKU\S-1-5-21-1200520878-3419369555-4043073295-1000\...\Run: [Digiarty_Software_AirPlayit] => "C:\Program Files\Digiarty\Air_Playit\airplayit.exe" -min
HKU\S-1-5-21-1200520878-3419369555-4043073295-1000\...\Run: [Viber] => "C:\Users\jmgrogan\AppData\Local\Viber\Viber.exe" StartMinimized
HKU\S-1-5-21-1200520878-3419369555-4043073295-1000\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2012-11-27] (Google Inc.)
HKU\S-1-5-21-1200520878-3419369555-4043073295-1000\...\MountPoints2: {de6d1283-e450-11e1-9f4a-806e6f6e6963} - E:\wubi.exe
Startup: C:\Users\jmgrogan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Amazon Cloud Drive.lnk
Startup: C:\Users\jmgrogan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\jmgrogan\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\jmgrogan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk
ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google)
ShellIconOverlayIdentifiers: Groove Explorer Icon Overlay 1 (GFS Unread Stub) -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: Groove Explorer Icon Overlay 2 (GFS Stub) -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: Groove Explorer Icon Overlay 3 (GFS Folder) -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: Groove Explorer Icon Overlay 4 (GFS Unread Mark) -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: Groove Explorer Icon Overlay 1 (GFS Unread Stub) -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: Groove Explorer Icon Overlay 2 (GFS Stub) -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: Groove Explorer Icon Overlay 3 (GFS Folder) -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: Groove Explorer Icon Overlay 4 (GFS Unread Mark) -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://www.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x1542003B16C8CD01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = https://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM-x32 {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}
https://abbottmeetings.webex.com/client/WBXclient-T27L10NSP32EP15-15155/webex/ieatgpc1.cab
FireFox:
========
FF ProfilePath: C:\Users\jmgrogan\AppData\Roaming\Mozilla\Firefox\Profiles\4s17s4rf.default
FF Homepage: hxxp://google.com/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_125.dll ()
FF Plugin: @java.com/DTPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @Musicnotes.com/Musicnotes Viewer - C:\Program Files\Musicnotes\npmusicn64.dll (Musicnotes, Inc.)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_125.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1211151.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @Musicnotes.com/Musicnotes Viewer - C:\Program Files (x86)\Musicnotes\npmusicn.dll (Musicnotes, Inc.)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @Sibelius.com/Scorch Plugin - C:\Program Files (x86)\Musicnotes\npsibelius.dll ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @hulu.com/Hulu Desktop - C:\Users\jmgrogan\AppData\Local\HuluDesktop\instances\0.9.14.1\npHDPlg.dll (Hulu LLC)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\jmgrogan\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: amazon.com/AmazonMP3DownloaderPlugin - C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101721.dll (Amazon.com, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\jmgrogan\AppData\Roaming\mozilla\plugins\npatgpc.dll (Cisco WebEx LLC)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-28]
Chrome:
=======
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.75\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\gcswf32.dll No File
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll No File
CHR Extension: (Awesome Screenshot: Capture & Annotate) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\alelhddbbhepgpmgidjdcjakblofbmce [2014-03-05]
CHR Extension: (Google Drive) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-12-23]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-28]
CHR Extension: (Cat licking your screen) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bljgfogmfiepjlefknbnfopdoabpldcb [2014-05-28]
CHR Extension: (YouTube) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-08-12]
CHR Extension: (Nimbus Screenshot) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpconcjcammlapcogcnnelfmaeghhagj [2014-04-08]
CHR Extension: (Google Search) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-08-12]
CHR Extension: (Cut the Rope) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj [2014-05-31]
CHR Extension: (avast! Online Security) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-04-07]
CHR Extension: (Clearly) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj [2014-02-21]
CHR Extension: (CanvasDraw) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\knfimpamngmggpbamfoomdpebdoleghe [2014-05-31]
CHR Extension: (Cute Kitten 2) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\knhilgggnegappnkfbeaeeiioopeamlc [2014-05-28]
CHR Extension: (My Global Ponies) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mffeflcejpmnpedngepmhbafhmmpmgpg [2014-05-29]
CHR Extension: (Quick Note) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mijlebbfndhelmdpmllgcfadlkankhok [2014-04-08]
CHR Extension: (Google Wallet) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (Gmail) - C:\Users\jmgrogan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-08-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-05-28]
==================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-28] (AVAST Software)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [270336 2012-07-13] (Brother Industries, Ltd.) [File not signed]
R2 CouponPrinterService; C:\Program Files (x86)\Coupons\CouponPrinterService.exe [177648 2014-03-28] (Coupons.com Inc.)
R2 FlipShare Service; C:\Program Files (x86)\Flip Video\FlipShare\FlipShareService.exe [460144 2011-05-06] ()
R2 FlipShareServer; C:\Program Files (x86)\Flip Video\FlipShareServer\FlipShareServer.exe [1085440 2011-05-06] () [File not signed]
R2 LeapFrog Connect Device Service; C:\Program Files (x86)\LeapFrog\LeapFrog Connect\CommandService.exe [7393280 2014-01-22] (LeapFrog Enterprises, Inc.) [File not signed]
S3 MSSQL$MSSMLBIZ; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.MSSMLBIZ\MSSQL\Binn\sqlservr.exe [43010392 2009-03-30] (Microsoft Corporation)
U2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-09] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-09] (NVIDIA Corporation)
R2 SBSDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.)
S4 SQLAgent$MSSMLBIZ; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.MSSMLBIZ\MSSQL\Binn\SQLAGENT.EXE [366936 2009-03-30] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-28] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-28] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-28] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-28] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-28] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-28] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-28] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-28] ()
R3 hcw85cir; C:\Windows\System32\drivers\hcw85cir3.sys [33792 2011-09-29] (Hauppauge Computer Works, Inc.)
R3 hcw89; C:\Windows\System32\DRIVERS\hcw89.sys [1605376 2011-07-05] (Hauppauge Computer Works, Inc.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-13] (Brother Industries Ltd.)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-06 13:57 - 2014-07-06 13:57 - 00027105 _____ () C:\Users\jmgrogan\Desktop\FRST.txt
2014-07-06 09:50 - 2014-07-06 09:51 - 00000000 ____D () C:\Users\jmgrogan\Downloads\7-6-2014
2014-07-06 09:46 - 2014-07-06 09:46 - 00000095 _____ () C:\Users\jmgrogan\Desktop\Regfix.reg
2014-07-06 09:43 - 2014-07-05 16:56 - 02084352 _____ (Farbar) C:\Users\jmgrogan\Desktop\FRST64.exe
2014-07-06 00:26 - 2014-07-06 00:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.2
2014-07-06 00:02 - 2014-07-06 00:07 - 219574272 _____ () C:\Users\jmgrogan\Downloads\LibreOffice_4.2.5_Win_x86.msi
2014-07-05 21:34 - 2014-07-05 21:34 - 00291056 _____ () C:\Windows\Minidump\070514-91822-01.dmp
2014-07-05 20:49 - 2014-07-05 20:49 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-07-05 20:49 - 2014-07-05 20:49 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-07-05 20:49 - 2014-07-05 20:49 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-07-05 20:49 - 2014-07-05 20:49 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-07-05 20:49 - 2014-07-05 20:49 - 00000000 ____D () C:\Program Files (x86)\Java
2014-07-05 20:48 - 2014-07-05 20:48 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-07-05 20:48 - 2014-07-05 20:48 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-07-05 20:48 - 2014-07-05 20:48 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-07-05 20:48 - 2014-07-05 20:48 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-07-05 20:48 - 2014-07-05 20:48 - 00000000 ____D () C:\Program Files\Java
2014-07-05 19:07 - 2014-07-05 19:07 - 00000925 _____ () C:\Users\jmgrogan\Desktop\SNAGIT32.lnk
2014-07-05 19:07 - 2014-07-05 19:07 - 00000000 ____D () C:\Snagit32
2014-07-05 19:04 - 2014-07-05 20:50 - 00000000 ____D () C:\Users\jmgrogan\AppData\Local\Adobe
2014-07-05 16:58 - 2014-07-05 16:59 - 00052439 _____ () C:\Users\jmgrogan\Downloads\Addition.txt
2014-07-05 16:57 - 2014-07-06 13:57 - 00000000 ____D () C:\FRST
2014-07-05 16:57 - 2014-07-05 16:59 - 00059305 _____ () C:\Users\jmgrogan\Downloads\FRST.txt
2014-07-05 16:56 - 2014-07-05 16:56 - 02084352 _____ (Farbar) C:\Users\jmgrogan\Downloads\FRST64.exe
2014-06-30 19:53 - 2014-06-30 21:05 - 00000000 ____D () C:\Users\jmgrogan\Downloads\spybot_files
2014-06-30 19:43 - 2014-06-30 19:43 - 00000000 ____D () C:\Windows\ERDNT
2014-06-30 19:42 - 2014-06-30 19:42 - 00791393 _____ (Lars Hederer ) C:\Users\jmgrogan\Downloads\erunt-setup.exe
2014-06-30 19:42 - 2014-06-30 19:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
2014-06-30 19:42 - 2014-06-30 19:42 - 00000000 ____D () C:\Program Files (x86)\ERUNT
2014-06-28 22:31 - 2014-06-28 22:33 - 27167987 _____ () C:\Users\jmgrogan\Downloads\torbrowser-install-3.6.2_en-US.exe
2014-06-28 20:47 - 2014-06-28 20:47 - 00291544 _____ () C:\Windows\Minidump\062814-64303-01.dmp
2014-06-28 20:46 - 2014-07-05 21:33 - 1325973081 ____N () C:\Windows\MEMORY.DMP
2014-06-28 20:45 - 2014-06-28 20:45 - 00001131 _____ () C:\Users\Public\Desktop\DivX Converter.lnk
2014-06-27 07:39 - 2014-06-27 07:39 - 00291544 _____ () C:\Windows\Minidump\062714-65411-01.dmp
2014-06-26 20:00 - 2014-06-26 20:00 - 00291528 _____ () C:\Windows\Minidump\062614-56721-01.dmp
2014-06-26 19:26 - 2014-06-26 19:26 - 00000000 ____D () C:\Users\jmgrogan\Downloads\6209_25th_Ave
2014-06-26 19:16 - 2014-06-26 19:16 - 00291544 _____ () C:\Windows\Minidump\062614-61027-01.dmp
2014-06-25 19:03 - 2014-07-05 15:15 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-25 19:03 - 2014-06-25 19:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-06-25 19:03 - 2014-06-25 19:03 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-06-25 19:03 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-06-25 19:03 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-06-25 07:16 - 2014-06-25 07:16 - 00291544 _____ () C:\Windows\Minidump\062514-63508-01.dmp
2014-06-22 23:27 - 2014-06-22 23:27 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-06-22 23:27 - 2014-06-22 23:27 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-06-22 23:27 - 2014-06-22 23:27 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-06-22 23:27 - 2014-06-22 23:27 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-06-22 23:25 - 2014-06-22 23:26 - 00284224 _____ (Mozilla) C:\Users\jmgrogan\Downloads\Firefox Setup Stub 30.0.exe
2014-06-22 23:13 - 2014-06-22 23:13 - 00283168 _____ () C:\Windows\Minidump\062214-58500-01.dmp
2014-06-22 18:09 - 2014-06-22 18:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-22 18:08 - 2014-06-22 18:09 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-22 18:08 - 2014-06-22 18:09 - 00000000 ____D () C:\Program Files\iTunes
2014-06-22 18:08 - 2014-06-22 18:09 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-22 18:08 - 2014-06-22 18:08 - 00000000 ____D () C:\Program Files\iPod
2014-06-22 18:02 - 2014-06-22 18:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-20 21:51 - 2014-06-20 21:51 - 00002051 _____ () C:\Windows\wininit.ini
2014-06-20 20:03 - 2014-06-20 20:03 - 00000000 ____D () C:\Program Files (x86)\predm
2014-06-20 10:04 - 2014-06-20 10:04 - 00002450 _____ () C:\Users\jmgrogan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk
2014-06-20 10:02 - 2014-06-20 10:02 - 00002318 _____ () C:\Users\jmgrogan\Desktop\Continue installation - Octodad_DadliestCatchFullVersionGameFreeDownload Installation.lnk
2014-06-20 10:02 - 2014-06-20 10:02 - 00000000 ____D () C:\Users\jmgrogan\AppData\Local\4377
2014-06-19 22:50 - 2014-06-19 22:50 - 00291544 _____ () C:\Windows\Minidump\061914-64631-01.dmp
2014-06-19 16:48 - 2014-06-19 16:48 - 00291544 _____ () C:\Windows\Minidump\061914-37221-01.dmp
2014-06-15 11:39 - 2014-06-15 11:39 - 00291544 _____ () C:\Windows\Minidump\061514-32697-01.dmp
2014-06-14 06:00 - 2014-06-14 06:00 - 00291424 _____ () C:\Windows\Minidump\061414-32370-01.dmp
2014-06-12 19:56 - 2014-06-12 19:56 - 00291544 _____ () C:\Windows\Minidump\061214-35365-01.dmp
2014-06-11 13:26 - 2014-06-11 13:26 - 00291544 _____ () C:\Windows\Minidump\061114-39374-01.dmp
2014-06-11 04:16 - 2014-06-08 04:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-11 04:16 - 2014-06-08 04:08 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-11 04:16 - 2014-05-23 21:48 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-11 04:16 - 2014-05-23 21:47 - 02239488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-11 04:16 - 2014-05-23 21:47 - 01366016 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 19290112 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 15368704 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 02650112 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-11 04:16 - 2014-05-23 21:46 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-11 04:16 - 2014-05-23 21:45 - 01508864 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-11 04:16 - 2014-05-23 21:45 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-11 04:16 - 2014-05-23 21:45 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-11 04:16 - 2014-05-23 20:26 - 14365696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-06-11 04:16 - 2014-05-23 20:26 - 01766400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-06-11 04:16 - 2014-05-23 20:26 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-06-11 04:16 - 2014-05-23 20:26 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-06-11 04:16 - 2014-05-23 20:26 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-06-11 04:16 - 2014-05-23 20:26 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 13731328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 02862080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 01440768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-06-11 04:16 - 2014-05-23 20:25 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-06-11 04:16 - 2014-05-23 20:25 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-06-11 04:16 - 2014-05-23 20:09 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-11 04:16 - 2014-05-23 20:03 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-06-11 04:16 - 2014-05-23 19:13 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-06-11 04:16 - 2014-05-23 19:06 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-06-11 04:16 - 2014-05-08 04:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-06-11 04:16 - 2014-05-08 04:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-06-11 04:16 - 2014-04-24 21:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-06-11 04:16 - 2014-04-24 21:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-06-11 04:16 - 2014-04-04 21:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-06-11 04:16 - 2014-04-04 21:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-06-11 04:16 - 2014-03-26 09:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-06-11 04:16 - 2014-03-26 09:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-06-11 04:16 - 2014-03-26 09:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-06-11 04:16 - 2014-03-26 09:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-06-11 04:16 - 2014-03-26 09:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-06-11 04:16 - 2014-03-26 09:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-06-11 04:16 - 2014-03-26 09:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2014-06-11 04:16 - 2014-03-26 09:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-06-10 06:25 - 2014-06-10 06:25 - 00291544 _____ () C:\Windows\Minidump\061014-31839-01.dmp
2014-06-07 08:04 - 2014-06-07 08:04 - 00000000 ____D () C:\Users\jmgrogan\Tracing
2014-06-07 07:55 - 2014-06-07 07:55 - 00001374 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2014-06-07 07:55 - 2014-06-07 07:55 - 00001305 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2014-06-07 07:55 - 2014-06-07 07:55 - 00000000 ____D () C:\Windows\en
2014-06-07 07:54 - 2014-06-07 07:55 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2014-06-07 07:54 - 2014-06-07 07:54 - 00002486 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
2014-06-07 07:54 - 2014-06-07 07:54 - 00001458 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2014-06-07 07:54 - 2014-03-31 21:06 - 00058056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fssfltr.sys
2014-06-07 07:53 - 2014-06-07 07:54 - 00000000 ____D () C:\Program Files\Windows Live
2014-06-07 07:53 - 2014-06-07 07:54 - 00000000 ____D () C:\Program Files (x86)\Windows Live
2014-06-07 07:50 - 2014-06-07 07:50 - 00002191 _____ () C:\Users\jmgrogan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2014-06-07 07:50 - 2014-06-07 07:50 - 00002104 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2014-06-07 07:50 - 2014-06-07 07:50 - 00002104 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2014-06-07 07:50 - 2014-06-07 07:50 - 00000000 ___RD () C:\Users\jmgrogan\OneDrive
2014-06-07 07:50 - 2014-06-07 07:50 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2014-06-07 07:50 - 2014-06-07 07:50 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive
2014-06-07 07:49 - 2014-06-07 08:04 - 00000000 ____D () C:\Users\jmgrogan\AppData\Local\Windows Live
2014-06-07 07:49 - 2014-06-07 07:49 - 01239752 _____ (Microsoft Corporation) C:\Users\jmgrogan\Downloads\wlsetup-web.exe
==================== One Month Modified Files and Folders =======
2014-07-06 13:57 - 2014-07-06 13:57 - 00027105 _____ () C:\Users\jmgrogan\Desktop\FRST.txt
2014-07-06 13:57 - 2014-07-05 16:57 - 00000000 ____D () C:\FRST
2014-07-06 13:53 - 2012-08-12 00:46 - 01494747 _____ () C:\Windows\WindowsUpdate.log
2014-07-06 13:52 - 2012-08-12 02:49 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-06 13:45 - 2012-11-27 02:28 - 00003954 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{5BAB1382-E444-45B1-92A2-DBDA6DCE3B31}
2014-07-06 13:38 - 2012-08-12 02:14 - 00000902 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-06 11:59 - 2013-07-26 19:12 - 00000000 ____D () C:\Users\jmgrogan\AppData\Local\join.me
2014-07-06 11:58 - 2009-07-13 23:45 - 00026240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-06 11:58 - 2009-07-13 23:45 - 00026240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-06 11:50 - 2014-04-03 20:41 - 00000000 ____D () C:\Users\jmgrogan\AppData\Roaming\DropboxMaster
2014-07-06 11:50 - 2013-09-16 20:52 - 00000308 _____ () C:\Windows\Tasks\RtlDashSrvStart.job
2014-07-06 11:50 - 2012-12-25 14:38 - 00000000 ___RD () C:\Users\jmgrogan\Dropbox
2014-07-06 11:50 - 2012-12-25 13:53 - 00000000 ____D () C:\Users\jmgrogan\AppData\Roaming\Dropbox
2014-07-06 11:50 - 2012-08-12 02:14 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-06 11:50 - 2009-07-13 23:51 - 00133645 _____ () C:\Windows\setupact.log
2014-07-06 11:49 - 2012-08-18 02:03 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-07-06 11:49 - 2009-07-14 00:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-06 09:51 - 2014-07-06 09:50 - 00000000 ____D () C:\Users\jmgrogan\Downloads\7-6-2014
2014-07-06 09:46 - 2014-07-06 09:46 - 00000095 _____ () C:\Users\jmgrogan\Desktop\Regfix.reg
2014-07-06 00:32 - 2012-08-17 23:16 - 00000000 ____D () C:\Users\jmgrogan\AppData\Roaming\XBMC
2014-07-06 00:26 - 2014-07-06 00:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.2
2014-07-06 00:26 - 2014-05-15 23:56 - 00001500 _____ () C:\Users\Public\Desktop\LibreOffice 4.2.lnk
2014-07-06 00:26 - 2014-05-15 23:55 - 00000000 ____D () C:\Program Files (x86)\LibreOffice 4
2014-07-06 00:07 - 2014-07-06 00:02 - 219574272 _____ () C:\Users\jmgrogan\Downloads\LibreOffice_4.2.5_Win_x86.msi
2014-07-05 21:34 - 2014-07-05 21:34 - 00291056 _____ () C:\Windows\Minidump\070514-91822-01.dmp
2014-07-05 21:34 - 2012-08-13 16:44 - 00000000 ____D () C:\Windows\Minidump
2014-07-05 21:33 - 2014-06-28 20:46 - 1325973081 ____N () C:\Windows\MEMORY.DMP
2014-07-05 20:50 - 2014-07-05 19:04 - 00000000 ____D () C:\Users\jmgrogan\AppData\Local\Adobe
2014-07-05 20:50 - 2012-08-12 02:49 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-07-05 20:50 - 2012-08-12 02:49 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-05 20:50 - 2012-08-12 02:49 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-07-05 20:49 - 2014-07-05 20:49 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-07-05 20:49 - 2014-07-05 20:49 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-07-05 20:49 - 2014-07-05 20:49 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-07-05 20:49 - 2014-07-05 20:49 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-07-05 20:49 - 2014-07-05 20:49 - 00000000 ____D () C:\Program Files (x86)\Java
2014-07-05 20:48 - 2014-07-05 20:48 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-07-05 20:48 - 2014-07-05 20:48 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-07-05 20:48 - 2014-07-05 20:48 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-07-05 20:48 - 2014-07-05 20:48 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-07-05 20:48 - 2014-07-05 20:48 - 00000000 ____D () C:\Program Files\Java
2014-07-05 19:07 - 2014-07-05 19:07 - 00000925 _____ () C:\Users\jmgrogan\Desktop\SNAGIT32.lnk
2014-07-05 19:07 - 2014-07-05 19:07 - 00000000 ____D () C:\Snagit32
2014-07-05 16:59 - 2014-07-05 16:58 - 00052439 _____ () C:\Users\jmgrogan\Downloads\Addition.txt
2014-07-05 16:59 - 2014-07-05 16:57 - 00059305 _____ () C:\Users\jmgrogan\Downloads\FRST.txt
2014-07-05 16:56 - 2014-07-06 09:43 - 02084352 _____ (Farbar) C:\Users\jmgrogan\Desktop\FRST64.exe
2014-07-05 16:56 - 2014-07-05 16:56 - 02084352 _____ (Farbar) C:\Users\jmgrogan\Downloads\FRST64.exe
2014-07-05 16:54 - 2013-12-08 09:34 - 00000000 ____D () C:\Users\jmgrogan\AppData\Local\CrashDumps
2014-07-05 15:15 - 2014-06-25 19:03 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-07-05 14:57 - 2010-11-20 22:47 - 01025570 _____ () C:\Windows\PFRO.log
2014-07-04 00:15 - 2012-08-17 21:44 - 00000600 _____ () C:\Users\jmgrogan\AppData\Local\PUTTY.RND
2014-06-30 21:05 - 2014-06-30 19:53 - 00000000 ____D () C:\Users\jmgrogan\Downloads\spybot_files
2014-06-30 19:43 - 2014-06-30 19:43 - 00000000 ____D () C:\Windows\ERDNT
2014-06-30 19:42 - 2014-06-30 19:42 - 00791393 _____ (Lars Hederer ) C:\Users\jmgrogan\Downloads\erunt-setup.exe
2014-06-30 19:42 - 2014-06-30 19:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
2014-06-30 19:42 - 2014-06-30 19:42 - 00000000 ____D () C:\Program Files (x86)\ERUNT
2014-06-30 19:17 - 2014-02-01 19:01 - 00000000 ____D () C:\Users\jmgrogan\AppData\Roaming\TeamViewer
2014-06-29 00:21 - 2012-09-21 20:50 - 00000000 ____D () C:\Users\jmgrogan\AppData\Roaming\Notepad++
2014-06-29 00:06 - 2012-09-21 20:50 - 00000000 ____D () C:\Program Files (x86)\Notepad++
2014-06-28 22:35 - 2013-08-02 23:19 - 00000000 ____D () C:\Users\jmgrogan\Downloads\Tor Browser
2014-06-28 22:33 - 2014-06-28 22:31 - 27167987 _____ () C:\Users\jmgrogan\Downloads\torbrowser-install-3.6.2_en-US.exe
2014-06-28 20:47 - 2014-06-28 20:47 - 00291544 _____ () C:\Windows\Minidump\062814-64303-01.dmp
2014-06-28 20:45 - 2014-06-28 20:45 - 00001131 _____ () C:\Users\Public\Desktop\DivX Converter.lnk
2014-06-28 20:45 - 2014-06-05 00:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
2014-06-28 20:45 - 2013-01-02 03:19 - 00000000 ____D () C:\Program Files\DivX
2014-06-28 20:45 - 2013-01-02 03:19 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-06-28 20:45 - 2013-01-02 03:18 - 00000000 ____D () C:\ProgramData\DivX
2014-06-27 07:39 - 2014-06-27 07:39 - 00291544 _____ () C:\Windows\Minidump\062714-65411-01.dmp
2014-06-26 20:03 - 2014-05-28 19:33 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-06-26 20:00 - 2014-06-26 20:00 - 00291528 _____ () C:\Windows\Minidump\062614-56721-01.dmp
2014-06-26 19:26 - 2014-06-26 19:26 - 00000000 ____D () C:\Users\jmgrogan\Downloads\6209_25th_Ave
2014-06-26 19:16 - 2014-06-26 19:16 - 00291544 _____ () C:\Windows\Minidump\062614-61027-01.dmp
2014-06-25 19:03 - 2014-06-25 19:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-06-25 19:03 - 2014-06-25 19:03 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-06-25 19:03 - 2013-10-05 11:52 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-06-25 19:03 - 2013-10-05 11:52 - 00000000 ____D () C:\Users\jmgrogan\AppData\Roaming\Malwarebytes
2014-06-25 19:03 - 2013-10-05 11:52 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-25 19:03 - 2013-10-05 11:52 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-06-25 07:16 - 2014-06-25 07:16 - 00291544 _____ () C:\Windows\Minidump\062514-63508-01.dmp
2014-06-22 23:28 - 2012-08-12 02:44 - 00000000 ____D () C:\Users\jmgrogan\AppData\Roaming\Mozilla
2014-06-22 23:27 - 2014-06-22 23:27 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-06-22 23:27 - 2014-06-22 23:27 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-06-22 23:27 - 2014-06-22 23:27 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-06-22 23:27 - 2014-06-22 23:27 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-06-22 23:26 - 2014-06-22 23:25 - 00284224 _____ (Mozilla) C:\Users\jmgrogan\Downloads\Firefox Setup Stub 30.0.exe
2014-06-22 23:13 - 2014-06-22 23:13 - 00283168 _____ () C:\Windows\Minidump\062214-58500-01.dmp
2014-06-22 18:09 - 2014-06-22 18:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-22 18:09 - 2014-06-22 18:08 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-22 18:09 - 2014-06-22 18:08 - 00000000 ____D () C:\Program Files\iTunes
2014-06-22 18:09 - 2014-06-22 18:08 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-22 18:09 - 2012-11-21 15:27 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-06-22 18:08 - 2014-06-22 18:08 - 00000000 ____D () C:\Program Files\iPod
2014-06-22 18:04 - 2012-11-21 15:25 - 00000000 ____D () C:\ProgramData\Apple
2014-06-22 18:02 - 2014-06-22 18:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-22 18:02 - 2013-11-28 13:55 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-06-22 18:02 - 2013-11-28 13:55 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-06-22 17:59 - 2012-11-21 15:27 - 00000000 ____D () C:\Users\jmgrogan\AppData\Roaming\Apple Computer
2014-06-22 15:03 - 2014-05-11 19:14 - 00000000 ____D () C:\Users\jmgrogan\AppData\Roaming\.minecraft
2014-06-22 06:39 - 2014-02-09 14:45 - 00006760 _____ () C:\Windows\system32\TeamViewer9_Hooks.log
2014-06-22 06:38 - 2014-02-01 19:01 - 00001102 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-06-22 06:38 - 2014-02-01 19:01 - 00001090 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-06-21 09:40 - 2013-03-16 16:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-06-20 21:51 - 2014-06-20 21:51 - 00002051 _____ () C:\Windows\wininit.ini
2014-06-20 20:03 - 2014-06-20 20:03 - 00000000 ____D () C:\Program Files (x86)\predm
2014-06-20 15:02 - 2009-07-14 00:08 - 00032610 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-06-20 10:04 - 2014-06-20 10:04 - 00002450 _____ () C:\Users\jmgrogan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk
2014-06-20 10:02 - 2014-06-20 10:02 - 00002318 _____ () C:\Users\jmgrogan\Desktop\Continue installation - Octodad_DadliestCatchFullVersionGameFreeDownload Installation.lnk
2014-06-20 10:02 - 2014-06-20 10:02 - 00000000 ____D () C:\Users\jmgrogan\AppData\Local\4377
2014-06-19 22:50 - 2014-06-19 22:50 - 00291544 _____ () C:\Windows\Minidump\061914-64631-01.dmp
2014-06-19 16:48 - 2014-06-19 16:48 - 00291544 _____ () C:\Windows\Minidump\061914-37221-01.dmp
2014-06-17 19:33 - 2012-08-12 02:14 - 00003898 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-17 19:33 - 2012-08-12 02:14 - 00003646 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-15 11:39 - 2014-06-15 11:39 - 00291544 _____ () C:\Windows\Minidump\061514-32697-01.dmp
2014-06-14 06:00 - 2014-06-14 06:00 - 00291424 _____ () C:\Windows\Minidump\061414-32370-01.dmp
2014-06-13 18:07 - 2014-05-06 00:48 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-06-12 19:56 - 2014-06-12 19:56 - 00291544 _____ () C:\Windows\Minidump\061214-35365-01.dmp
2014-06-12 17:14 - 2013-07-28 11:33 - 00000000 ____D () C:\Windows\system32\MRT
2014-06-12 17:11 - 2013-11-14 05:04 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-06-12 17:11 - 2012-08-12 01:05 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-06-11 13:26 - 2014-06-11 13:26 - 00291544 _____ () C:\Windows\Minidump\061114-39374-01.dmp
2014-06-10 06:25 - 2014-06-10 06:25 - 00291544 _____ () C:\Windows\Minidump\061014-31839-01.dmp
2014-06-08 04:13 - 2014-06-11 04:16 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-08 04:08 - 2014-06-11 04:16 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-07 08:04 - 2014-06-07 08:04 - 00000000 ____D () C:\Users\jmgrogan\Tracing
2014-06-07 08:04 - 2014-06-07 07:49 - 00000000 ____D () C:\Users\jmgrogan\AppData\Local\Windows Live
2014-06-07 08:04 - 2012-08-12 00:46 - 00000000 ____D () C:\Users\jmgrogan
2014-06-07 07:55 - 2014-06-07 07:55 - 00001374 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2014-06-07 07:55 - 2014-06-07 07:55 - 00001305 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2014-06-07 07:55 - 2014-06-07 07:55 - 00000000 ____D () C:\Windows\en
2014-06-07 07:55 - 2014-06-07 07:54 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2014-06-07 07:54 - 2014-06-07 07:54 - 00002486 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
2014-06-07 07:54 - 2014-06-07 07:54 - 00001458 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2014-06-07 07:54 - 2014-06-07 07:53 - 00000000 ____D () C:\Program Files\Windows Live
2014-06-07 07:54 - 2014-06-07 07:53 - 00000000 ____D () C:\Program Files (x86)\Windows Live
2014-06-07 07:54 - 2013-11-14 05:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-06-07 07:53 - 2009-07-13 22:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-06-07 07:51 - 2013-08-20 01:22 - 00012455 _____ () C:\Windows\DirectX.log
2014-06-07 07:50 - 2014-06-07 07:50 - 00002191 _____ () C:\Users\jmgrogan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2014-06-07 07:50 - 2014-06-07 07:50 - 00002104 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2014-06-07 07:50 - 2014-06-07 07:50 - 00002104 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2014-06-07 07:50 - 2014-06-07 07:50 - 00000000 ___RD () C:\Users\jmgrogan\OneDrive
2014-06-07 07:50 - 2014-06-07 07:50 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2014-06-07 07:50 - 2014-06-07 07:50 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive
2014-06-07 07:49 - 2014-06-07 07:49 - 01239752 _____ (Microsoft Corporation) C:\Users\jmgrogan\Downloads\wlsetup-web.exe
2014-06-07 06:23 - 2013-07-14 13:04 - 00000000 ____D () C:\Users\jmgrogan\AppData\Local\Screencast-O-Matic
Some content of TEMP:
====================
C:\Users\jmgrogan\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpxpnqhp.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-06-28 00:49
==================== End Of Log ============================